Privacy Policy
Last updated: July 2026
This Privacy Policy explains how Nex-Sign ("we", "us") collects, uses, and protects personal data when you use our electronic-signature platform and API (the "Service").
1. Data we process
- Account data: your name, email, company, and login credentials (passwords are hashed).
- Document data: the documents you submit and the signer details (name, email) you provide.
- Signature data: signatures captured from signers and a signing audit trail (timestamps, IP).
- Usage & billing data: API usage and payment records (card data is handled by Stripe, never stored by us).
2. How we use it
We process data to provide the Service — converting and delivering documents, capturing signatures, producing sealed records, sending notifications, and billing. We do not sell your personal data.
3. Where data is stored
Documents and personal data are stored in Amazon Web Services in London (eu-west-2). Transactional email is sent via Amazon SES; payments are processed by Stripe.
4. Retention
Because signed documents are legal records, we retain them for the period required by applicable law and your account configuration, rather than deleting on request where retention obligations apply.
5. Sub-processors
- Amazon Web Services — hosting & storage (London).
- Amazon SES — transactional email.
- Stripe — payment processing.
6. Your rights
Subject to applicable law and our retention obligations, you may request access to, correction of, or deletion of your personal data by contacting us.
7. Security
We use encryption in transit, hashed credentials, scoped API tokens, and signed webhooks. No system is perfectly secure, but we work to protect your data.
8. Contact
Privacy questions or requests: privacy@nex-sign.com.
